funsec mailing list archives

RE: Yet Another Vulnerability Plagues IE?


From: Carl Jongsma <info () skiifwrald com>
Date: Tue, 25 Apr 2006 14:19:04 +0930

Microsoft's Internet Explorer, which was just patched with 10 fixes two weeks ago, suffers from yet another zero-day vulnerability that can be exploited remotely, security firm Symantec said Monday.

The vulnerability was first pushed to FD (the timestamp is about an hour ahead of BugTraq), and there is a little bit of followup notification there.

http://lists.grok.org.uk/pipermail/full-disclosure/2006-April/ 045422.html http://lists.grok.org.uk/pipermail/full-disclosure/2006-April/ 045423.html

The BugTraq message can be found here:

        http://www.securityfocus.com/archive/1/431796/30/30/threaded

And for those who care, it was covered in a recent message on this mailing list (Disclosure - it is my mailing list):

http://skiifwrald.com/pipermail/alertmailinglist_skiifwrald.com/2006- April/000169.html

There are also 0-days for Safari and Firefox that have come to light in the last 24 hours (Firefox is ≈ 10 hours old) for DoS (Safari) and possible arbitrary code execution (Firefox). Details will soon appear:

http://skiifwrald.com/pipermail/alertmailinglist_skiifwrald.com/2006- April/000170.html

(I might eventually work out the right account from where to send this email...[i.e. the one I joined Funsec under])

Sincerely,

Carl Jongsma
info () beskerming com
Sûnnet Beskerming Pty. Ltd.
Adelaide, Australia
http://www.beskerming.com
http://www.skiifwrald.com/sunnet
Tel: 0410 707 444 / 08 8283 1154

Jongsma & Jongsma Pty. Ltd.

Established in mid 2004, Jongsma & Jongsma Pty. Ltd. is a pure Research and Development company focussing on advanced software and hardware concepts. Since inception, Jongsma & Jongsma Pty. Ltd. has already developed software tools for advanced user and security management in web applications, complete data protection, and effective phishing defences for financial companies.

Sûnnet Beskerming Pty. Ltd.

Established in mid 2004, Sûnnet Beskerming Pty. Ltd. is the sister company to Jongsma & Jongsma Pty. Ltd., and was formed to develop and commercialise the research coming out of Jongsma & Jongsma Pty. Ltd.. Sûnnet Beskerming Pty. Ltd. is an Information Security specialist and, in conjunction with the tools developed by Jongsma & Jongsma Pty. Ltd., provides total security solutions and services, from the perimeter to internal data stores, including web application security and security testing and analysis.


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: